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Amendments to the Claims: 

This listing of claims will replace all prior versions, and listings, of claims in the 
application: 

Listing of Claims: 

1 . (Currently Amended) A method of sending encrypted streamed data 
over an IP network from a first node to a second node, the method comprising: 

using Internet Key Exchange (IKE) Phase 1 negotiation to establish an IKE 
security association (SA) between the first and second nodes; 

entering IKE Phase 2 to negotiate an IPSec SA for each transmission direction; 

passing the IPSec SA data to streamed data applications associated with the 
streamed data, using th e I KE SA to establish an IPS e c SA b e tween the f i rst and s e cond 
nod e s; 

encrypting the streamed data at the first node with a cipher using a shared secret 
forming part of said IPSec SA; 

constructing IP datagrams containing in th ei r paytoad cogmonts of the encrypted 
streamed data, the datagrams not including an IPSec header or headers; and 

sending the IP datagrams from the first node to the second node. 

2. (Original) A method according to claim 1, wherein said streamed data 
is VoIP data or videoconferencing data. 

3. (Currently Amended) A method according to claim 1, wherein said 
first and second nodes are end points for the data. 

4. (Currently Amended) A method according to claim 1, wherein said 
pee* first and second nodes tunnel data between respective end points. 
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5. (Currently Amended) An apparatus Apparatus for securing s e nding 
streamed data over an IP network to a pe e r from a first node to a second node, the 
apparatus comprising: 

processing means and memory containing software instructions for implementing 
IPSec protocols; 

an application for delivering streamed data; 

means for employing oomponents of said proc e ssing me a no and memory 
contain i ng software inctructions for using Internet Key Exchange (IKE) Phase 1 
negotiation to establish an IKE security association (SA) between the first and second 
nodes; 

means for entering IKE Phase 2 negotiation to negotiate an IPSec SA for each 
transmission direction: 

means for passing the IPSec SA data to applications associated with the 
streamed data. 

encrypting means for encrypting the strea med data at the first node with a cipher 
using a shared secret forming part of said IPSec SA: 

means for constructing IP datagrams containing the encrypted streamed data, 
the datagrams not including an IPSec header or headers; and 

transmission means for sending the IP datagrams from the first node to the 
second node. 

means for us i ng tho IKE SA to establish o n- IPS e c SA b e tween th e first and 
second nodes, the I KE SA compri s ing a shared secr e t; 

m ea n s for e n crypting the s tream e d data with a cipher us i ng tho sh a r e d s e cr e t; 

means for constructing I P datagrams contain i ng in th e ir payload s e gments of the 
e ncrypted s tr eam e d data, th e datagrams not inc l ud i ng a n I PSec head e r or header s ; and 

tr a n s m i ssion moono for se n ding th e IP datagrams from tho first nod e to the 
s e cond node . 
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6. (Original) Apparatus according to claim 5, the apparatus being an end 
user terminal such as a telephone, communicator, PDA or palmtop computer, or a 
personal computer (PC). 

7. (Currently Amended) Apparatus according to claim 6, the apparatus 
being a firewall or gateway coupled to the first node an end point which is the source of 
the streamed data. 
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